Security Advisory

CVE-2019-2104

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-07-08 17:34:14
Last updated 2024-08-04 18:42:49
Assigner google_android
CVSS score not scored
State PUBLISHED

Description

In HIDL, safe_union, and other C++ structs/unions being sent to application processes, there are uninitialized fields. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android-8.0 Android-8.1 Android-9. Android ID: A-131356202